601
|
9.8 |
CRITICAL
Network
codezips
|
project_management_system
|
A vulnerability was found in Codezips Project Management System 1.0. It has been classified as critical. This affects an unknown part of the file /pages/forms/course.php. The manipulation of the argu…
|
CWE-89
SQL Injection
|
CVE-2025-0233
|
2025-01-11 02:28 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
602
|
7.8 |
HIGH
Local
|
qualcomm
|
fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware qcm4490_firmware qcs4490_firmware snapdragon_8_gen_3_mobile_firmware snapdragon_8\+_gen_1_mobile_firmwa…
|
Memory corruption while processing IPA statistics, when there are no active clients registered.
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-21464
|
2025-01-11 02:22 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
603
|
5.5 |
MEDIUM
Local
|
qualcomm
|
qam8255p_firmware qam8295p_firmware qam8650p_firmware qam8775p_firmware qamsrv1h_firmware qca6595_firmware qca6595au_firmware qca6696_firmware qca6698aq_firmware sa8255p_fi…
|
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-23366
|
2025-01-11 02:20 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
604
|
- |
|
-
|
-
|
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the devname parameter in the reset_wifi function.
|
-
|
CVE-2024-57214
|
2025-01-11 02:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
605
|
- |
|
-
|
-
|
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the modifyOne parameter in the enable_wsh function.
|
-
|
CVE-2024-57211
|
2025-01-11 02:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
606
|
- |
|
-
|
-
|
Vaultwarden v1.32.5 was discovered to contain an authenticated reflected cross-site scripting (XSS) vulnerability via the component /api/core/mod.rs.
|
-
|
CVE-2024-55226
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
607
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Entity Form Steps allows Cross-Site Scripting (XSS).This issue affects Entity Form Steps: …
|
-
|
CVE-2024-13305
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
608
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal OAuth & OpenID Connect Single Sign On – SSO (OAuth/OIDC Client) allows Cross-Site Scriptin…
|
-
|
CVE-2024-13301
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
609
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Tarte au Citron allows Cross-Site Scripting (XSS).This issue affects Tarte au Citron: from…
|
-
|
CVE-2024-13298
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
610
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Tooltip allows Cross-Site Scripting (XSS).This issue affects Tooltip: from 0.0.0 before 1.…
|
-
|
CVE-2024-13292
|
2025-01-11 02:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|